
CVE-2024-7928
CVE-2024-7928: FastAdmin < V1.3.4.20220530 Arbitrary File Reading Vulnerability

CVE-2024-7928: FastAdmin < V1.3.4.20220530 Arbitrary File Reading Vulnerability


Sensitive Information Exposure via assignments in LearnDash.

PoC for Silverpeas <= 6.4.2 Username Enumeration

🛡️ SSH User Enumeration (CVE-2018-15473). Python 3, multihilo y calibración anti-falsos positivos. 🧵

Cobalt Strike Aggressor script that weaponizes LNK and Library-MS files to trigger SMB NTLMv2 hash disclosure, including CVE-2025-24054 bypass, for…

A Firefox extension for detecting React2Shell vulnerabilities (CVE-2025-55182 & CVE-2025-66478) in web applications.

Bug Bounty: CVE-2023-50839 IDOR identified in a third-party support component via 'gau' and 'Nuclei'. Despite perimeter redirects, the outdated…

HackTheBox — Pterodactyl (Medium/Linux) walkthrough. CVE-2025-49132 LFI → pearcmd RCE → bcrypt crack → SSH. Privesc via CVE-2025-6018 (PAM…

Writeup of the Optimum machine from Hack The Box. This walkthrough covers the exploitation of Rejetto HttpFileServer 2.3 (CVE-2014-6287) to gain…

CVE-2026-25049

CVE-2026-21857 - Redaxo has Path Traversal in Backup Addon Leading to Arbitrary File Read


CVE-2026-23491 - InvoicePlane has Unauthenticated Path Traversal in Guest Controller

A fully refactored, Python 3 compatible exploit script for Tomcat Ghostcat (CVE-2020-1938 / CNVD-2020-10487) AJP Local File Inclusion

A Proof of Concept (PoC) for CVE-2025-52913, a path normalization vulnerability affecting Mitel MiCollab.


Educational exploit tool for CVE-2018-9995 targeting DVR credentials, with Shodan-based target discovery and automated credential retrieval.